CVE Vulnerabilities

CVE-2013-6433

Published: Jun 02, 2014 | Modified: Oct 19, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.6 HIGH
AV:N/AC:H/Au:N/C:C/I:C/A:C
RedHat/V2
6.2 LOW
AV:L/AC:H/Au:N/C:C/I:C/A:C
RedHat/V3
Ubuntu
MEDIUM

The default configuration in the Red Hat openstack-neutron package before 2013.2.3-7 does not properly set a configuration file for rootwrap, which allows remote attackers to gain privileges via a crafted configuration file.

Affected Software

Name Vendor Start Version End Version
Neutron Openstack 2013.1 (including) 2013.2.3 (including)
OpenStack 4 for RHEL 6 RedHat openstack-neutron-0:2013.2.3-7.el6ost *
Neutron Ubuntu devel *
Neutron Ubuntu saucy *
Neutron Ubuntu trusty *

References